Security Advisory

CVE-2022-2025

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-09-23 15:06:54
Last updated 2025-05-22 19:59:54
Assigner INCIBE
State PUBLISHED

Description

an attacker with knowledge of user/pass of Grandstream GSD3710 in its 1.0.11.13 version, could overflow the stack since it doesnt check the param length before use the strcopy instruction. The explotation of this vulnerability may lead an attacker to execute a shell with full access.